Техническая информация
- <SYSTEM32>\rundll32.exe ""%TEMP%\ins1.tmp"",mbojuflfmuv install worker
- %TEMP%\ins1.tmp
- 'lo###odge.ce.ms':80
- lo###odge.ce.ms/CipjrDeUMPKoirwqng5/3xbOZzezXylRAaWDEvDuoECsaDoJFn1DUHoDb5lzjFFGDIIHFy//PImu0ZvM/5crwYDmxi5oZxcyE6bJB5a6Yt8=
- lo###odge.ce.ms/hKKswwGM3yaSXXJ09PNvBoe6UwtOLlj3tqgECY920Jkruxe8ky/xVGNZgFENB+rJJrYDE4prpFRHcJQ1OF7zQiLVqsdDKLuxNcLORmt++mZ2C4W9dejHRI4oVXUPCDCf2Tl1fzEaYJGPRBRNLG2Nz/lAaBIMrwLW+kyCVj53nzgx6ctHi6quHW9X/13uuc1js4ErnXOm
- DNS ASK lo###odge.ce.ms
- ClassName: 'Shell_TrayWnd' WindowName: ''